Changes to setting the hyperscale VDOM policy offload level
FortiOS 6.4.8 includes the following command to change the policy offload level of a hyperscale firewall VDOM:
config system setings
set policy-offload-level {disable | dos-offload | full-offload}
end
disable
disable hyperscale firewall features and disable offloading DoS policy sessions to NP7 processors for this VDOM. All sessions are initiated by the CPU. Sessions that can be offloaded are sent to NP7 processors. This is the default setting.
dos-offload
offload DoS policy sessions to NP7 processors for this VDOM. All other sessions are initiated by the CPU. Sessions that can be offloaded are sent to NP7 processors.
full-offload
enable hyperscale firewall features for the current hyperscale firewall VDOM. This option is only available if the FortiGate is licensed for hyperscale firewall features. DoS policy sessions are also offloaded to NP7 processors. All other sessions are initiated by the CPU. Sessions that can be offloaded are sent to NP7 processors.
FortiOS 6.4.8 removes the |